Search

Search Results (346208 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2023-36526 2026-04-23 5.4 Medium
Missing Authorization vulnerability in Attinder Singh Duplicate Post Page Menu & Custom Post Type duplicate-post-page-menu-custom-post-type allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Duplicate Post Page Menu & Custom Post Type: from n/a through <= 3.0.1.
CVE-2023-36519 1 Wordpress 1 Wordpress 2026-04-23 5.4 Medium
Missing Authorization vulnerability in WPThemeGo SW Product Bundles sw-product-bundles allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SW Product Bundles: from n/a through <= 2.0.15.
CVE-2023-36518 1 Wordpress 1 Wordpress 2026-04-23 4.3 Medium
Missing Authorization vulnerability in Hugh Lashbrooke Post Hit Counter post-hit-counter allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Post Hit Counter: from n/a through <= 1.3.2.
CVE-2023-36510 2026-04-23 7.3 High
Missing Authorization vulnerability in catkin ReDi Restaurant Reservation redi-restaurant-reservation allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects ReDi Restaurant Reservation: from n/a through <= 23.0211.
CVE-2023-36509 2026-04-23 5.4 Medium
Missing Authorization vulnerability in Suresh Chand CHP Ads Block Detector chp-ads-block-detector allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects CHP Ads Block Detector: from n/a through <= 3.9.5.
CVE-2023-36506 2026-04-23 5.3 Medium
Missing Authorization vulnerability in YITHEMES YITH WooCommerce Waiting List yith-woocommerce-waiting-list allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects YITH WooCommerce Waiting List: from n/a through <= 2.13.0.
CVE-2023-36385 1 Wpxpo 1 Postx 2026-04-23 7.1 High
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPXPO PostX ultimate-post allows DOM-Based XSS.This issue affects PostX: from n/a through <= 2.9.9.
CVE-2023-35875 2 Jegstudio, Wordpress 2 Gutenverse, Wordpress 2026-04-23 5.3 Medium
Missing Authorization vulnerability in Jegstudio Gutenverse gutenverse allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Gutenverse: from n/a through <= 1.8.5.
CVE-2023-35777 2026-04-23 5.3 Medium
Missing Authorization vulnerability in StellarWP The Events Calendar the-events-calendar allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects The Events Calendar: from n/a through <= 6.1.2.2.
CVE-2023-35091 1 Storeapps 1 Stock Manager For Woocommerce 2026-04-23 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in storeapps Stock Manager for WooCommerce woocommerce-stock-manager allows Cross Site Request Forgery.This issue affects Stock Manager for WooCommerce: from n/a through <= 2.10.0.
CVE-2023-35052 2026-04-23 4.3 Medium
Missing Authorization vulnerability in wpWax Directorist directorist allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Directorist: from n/a through <= 7.5.4.
CVE-2023-35051 1 Cimatti 1 Wordpress Contact Forms 2026-04-23 5.4 Medium
Missing Authorization vulnerability in cimatti Contact Forms by Cimatti contact-forms allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Contact Forms by Cimatti: from n/a through <= 1.5.7.
CVE-2023-35046 2026-04-23 5.4 Medium
Missing Authorization vulnerability in Dynamic.ooo Dynamic Visibility for Elementor dynamic-visibility-for-elementor allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Dynamic Visibility for Elementor: from n/a through <= 5.0.5.
CVE-2023-35040 1 Pressified 1 Sendpress 2026-04-23 5.3 Medium
Missing Authorization vulnerability in brewlabs SendPress Newsletters sendpress allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SendPress Newsletters: from n/a through <= 1.26.1.20.
CVE-2023-35037 2026-04-23 N/A
Missing Authorization vulnerability in Surfer Surfer surferseo allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Surfer: from n/a through <= 1.3.2.357.
CVE-2023-34387 2026-04-23 4.3 Medium
Missing Authorization vulnerability in Constant Contact Constant Contact Forms constant-contact-forms allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Constant Contact Forms: from n/a through <= 2.0.3.
CVE-2023-34381 2026-04-23 5.3 Medium
Missing Authorization vulnerability in Gesundheit Bewegt GmbH Zippy zippy allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Zippy: from n/a through <= 1.6.2.
CVE-2023-34376 2026-04-23 5.4 Medium
Missing Authorization vulnerability in Sekander Badsha Change WooCommerce Add To Cart Button Text change-woocommerce-add-to-cart-button-text allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Change WooCommerce Add To Cart Button Text: from n/a through <= 1.3.
CVE-2023-34019 2026-04-23 6.5 Medium
Missing Authorization vulnerability in Uncanny Owl Uncanny Toolkit for LearnDash uncanny-learndash-toolkit allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Uncanny Toolkit for LearnDash: from n/a through <= 3.6.4.3.
CVE-2023-34014 2 G5theme, Wordpress 2 Grid-plus, Wordpress 2026-04-23 5.4 Medium
Missing Authorization vulnerability in g5theme Grid Plus grid-plus allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Grid Plus: from n/a through <= 1.3.2.